Chrome Extension Turns Malicious After Ownership Transfer, Enabling Code Injection and Data Theft

Mar 9, 2026

Two Google Chrome extensions have turned malicious after what appears to be a case of ownership transfer, offering attackers a way to push malware to downstream customers, inject arbitrary code, and harvest sensitive data.
The extensions in question, both originally associated with a developer named “akshayanuonline@gmail.com” (BuildMelon), are listed below –

QuickLens – Search Screen with

Get Free Report & Network Analysis

Please check your email for the free report.